CVE-2018-6493: HP Network Automation

High severity, CVSS 8.8. EPSS: 2% chance of exploitation in the next 30 days.

SQL Injection in HP Network Operations Management Ultimate, version 2017.07, 2017.11, 2018.02 and in Network Automation, version 10.00, 10.10, 10.11, 10.20, 10.30, 10.40, 10.50. This vulnerability could be remotely exploited to allow Remote SQL Injection.

Affected products

  • HP Network Automation: version 10.00 only; version 10.10 only; version 10.11 only; version 10.20 only; version 10.30 only; version 10.40 only; …
  • HP Network Operations Management Ultimate: version 2017.07 only; version 2017.11 only; version 2018.02 only

Published 2018-05-22. Last modified 2026-06-17.